Design

Our vision for creativity, design and innovation

by the auro teamSep 16, 2026
a quiet painted plaster sheet

Most clinical software looks the way it does because nobody decided. A field was needed, so a field appeared. A regulation arrived, so a tab arrived. After a decade you can read a vendor’s org chart off its user interface. That is the problem: what the practice sees is a picture of the vendor, not a picture of the work.

We think a clinical product should be beautiful. We mean something specific by that, and it is not that it should be decorated.

Beauty is a claim about attention

When something is well made, somebody was paying attention, and you can feel it before you can explain it. A clinician knows within a minute whether the people who built a tool have ever watched the job being done. The screen that opens on the thing you came for, the number already calculated, the button where your hand already was: none of it is an accident, and all of it says your time was taken seriously by somebody you will never meet.

The dietitian has eight minutes between patients, and in them she has to read what the last visit decided and know whether the claim went out. An interface that makes her hunt is not neutral: it is spending her attention on itself, and attention is the one thing in a small practice that cannot be bought back.

Paper and paint, because software is a material

Every surface in auro is built on a painted ground: gouache-weight pigment settling into the tooth of a sheet of paper, generated rather than photographed, in a forest green that goes almost black in the shadows and a plaster that is warm rather than grey. No stock photography, nobody in scrubs smiling at a tablet, no leaves scattered across a hero as a gesture at wellness.

The reason is not nostalgia. Paint on paper is a material with physics, and a material gives you a grammar. Pigment deposits, it does not glow. Edges bleed where the sheet is wet and stay crisp where it is dry. Once you accept those rules a hundred small decisions stop being arguments about taste, and the product ends up looking like one thing made by one hand. It also sets a ceiling on the decoration: you cannot add a gradient to a sheet of paper to rescue a weak layout.

The receipt is a design principle, not a feature

Auro calls payers, drafts notes, sends claims and drafts purchase orders on its own. Every one of those actions leaves a receipt: the recording and the reference number behind a verification, the transcript behind a note, the three-way match behind a received box. The receipt is not an audit feature bolted on for a compliance officer. It is the interface.

We design for calibrated trust, not maximum trust: the practice should believe the right things at the right strength and be able to check the rest in one click. So provenance sits next to an assertion instead of a confidence score, because a percentage is a rhetorical device and a link to the recording is evidence. An automated action is never the last word, only the draft in front of the person whose licence is on the line.

A dashboard that flatters is a lie with a chart on it.

Flag, do not guess

The hardest interface decision here is what to do when the software does not know. The tempting answer is to produce something anyway: an empty field looks like a failure, a filled one looks like a product. The honest answer is to say so, say why, and hand it to a person.

So the flag is a first-class object, designed with as much care as any result: what was attempted, where it stopped, and who it is waiting on. A flag costs somebody two minutes; a confident wrong answer costs a claim, and in a clinical setting it can cost more than that.

One record, or it is not a record

The visit, the call, the claim, the payment, the note, the shelf draw and the patient’s Tuesday breakfast are one story about one person. In separate systems, every seam becomes a place where somebody retypes, and every retyping is a chance to be wrong in a way nobody notices until the month closes.

So there is one record. A verification is a line on the visit; a claim is a line on the ledger that points back at the visit that produced it; a box arriving in the stockroom lands on the same ledger as the visits that will consume it. It is an architectural decision before it is a visual one, but you can see it: no screen in auro exists to move data from one part of auro to another.

What we refuse to build

  • Dark patterns. No cancellation flow that hides the exit, no consent collected by exhaustion. A practice that stays because leaving is hard has already left.
  • Invented numbers. Every figure on this site belongs to a ledger somebody can point at. Our calculators show their arithmetic and publish no return, because we cannot defend a return for a practice we have not met.
  • A dashboard that flatters. It is easy to make a bad month look good: choose the window, lead with the growing metric, bury the exception in a drawer. Auro shows the exceptions first and the totals second.
  • Engagement. No streak that punishes a missed Tuesday, no notification engineered to bring somebody back. Patients are not users to be retained.
  • Certainty we do not have. No model output presented as fact, no benchmark we have not run, no certification we have not earned.

Innovation is mostly deletion

The new thing is rarely the hard part. The hard part is deciding what a practice should never see again: the portal login, the hold music, the export, the spreadsheet reconciling two systems that should have been one. Most of our best work this year was a screen that stopped existing.

We would like auro to be the kind of thing somebody notices on a bad Thursday and thinks: whoever made this has been in a room like mine. That is the whole ambition, and everything above is in service of it.